cve/2024/CVE-2024-3899.md
2025-09-29 16:08:36 +00:00

800 B

CVE-2024-3899

Description

The Gallery Plugin for WordPress WordPress plugin before 1.8.15 does not sanitise and escape some of its image settings, which could allow users with post-writing privilege such as Author to perform Cross-Site Scripting attacks.

POC

Reference

Github

No PoCs found on GitHub currently.